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CLAIM LISTING 

This listing of claims will replace all prior versions, and listings of claims in the 
application: 

AMENDMENTS TO THE CLAIMS 

1 . (Currently Amended) A system of securely using decryption keys during 
configuration of an integrated circuit having programmable logic, comprises: 

a microcontroller within the integrated circuit for receiving an encrypted 
bitstream; 

a key storage register coupled to the microcontroller for storing key data; 

a decry ptor coupled to the key storage register, wherein only the decryptor 
reads from the key storage register; and 

a configuration data register in the integrated circuit, ^A^ierein the configuration 
data register cannot be read by the microcontroller after the decryptor is used^ 

wherein the decryptor is a software decrvotor stored in a memory and executed 
by the microcontroller wherein the system further comprises hardware that selectively 
enables access to the key storage register bv allowing the microcontroller access 
when a program counter of the microcontroller specifies an address within an address 
range corresponding to the software decryptor within the memorv . 

2. (Original) The system of claim 1 wherein the microcontroller stores key data in 
the key storage register, but the microcontroller cannot read from the key storage 
register. 

3. (Previously Presented) The system of claim 2, wherein the decryptor is a 
hardware decryptor embedded in the integrated circuit. 

4. Cancelled. 

5. (Original) The system of claim 4, wherein the memory is a ROM having a 
decryption engine. 
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6. (Previously presented) The system of claim 1, wherein the microcontroller 
further receives a configuration boot program comprising the decryptor in 
programmatic form along with the encrypted bitstream comprising encrypted 
configuration data to be loaded into the configuration data register. 

7. (Previously Presented) The system of claim 1 , wherein the microcontroller, the 
key register, the decryptor, and the configuration data register are all within the 
integrated circuit. 

8. (Previously Presented) The system of claim 1, wherein the microcontroller is an 
emulated microcontroller in the integrated circuit. 

9. (Previously presented) A system of securely using decryption keys during 
configuration of an integrated circuit having programmable logic, comprising: 

a microcontroller within the integrated circuit for receiving an encrypted 
bitstream; 

a key storage register coupled to the microcx)ntroller for storing key data; 

a decryption program stored in a memory that uses a predetermined memory 
address to enable access to the key storage register; and 

a configuration data register in the integrated circuit, wherein the configuration 
data register cannot be read by ttie microcontroller after the decryption program is 
used; 

whereiri access to the key storage register by the microcontroller is allowed only 
when a program counter of the microcontroller specifies an address within an address 
range corresponding to the decryption program in the memory. 

10. (Original) The system of claim 9, wherein the memory is a ROM containing a 
decryption engine. 

1 1 . (Original) The system of claim 9, wherein the microcontroller further receives a 
configuration boot program along with the encrypted bitstream. 
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12. (Currently Amended) A method of securely using decryption keys during field 
programmable gate array configuration, comprising the steps of: 

receiving an encrypted bitstream at a microcontroller within the field 
programmable gate array; 

loading a decryptor with data from a key register; 

loading the decryptor with data from the microcontroller; ([and]] 

loading a configuration data register with a decrypted bitstream from the 
decryptor, wherein the configuration data register cannot be read by the 
microcontroller after the decryptor is used : and 

selectively enablino access to the kev register bv allowtno the microcontroller 
access only when a program counter of the microcontroller specifies an address within 
an address ranoe of the decrvptor . 

13. (Original) The method of claim 12, wherein the method further comprises the 
step of loading the key register with key data from the microcontroller. 

14. (Previously presented) The method of claim 12, wherein the configuration data 
register cannot be read by the microcontroller while the decryptor is used, 

15. (Original) The method of claim 12, wherein the microcontroller cannot read 
from the key register. 

16. (Original) The method of claim 12, wherein only the decryptor can read from 
the key storage register. 

17. Cancelled. 

18. (Previously Presented) A system of securely using decryption keys during 
programmable logic device configuration, comprises: 

a memory-mapped key register coupled to a microcontroller data bus; 
a decryptor engine stored in non-volatile memory and coupled to the 
microcontroller data bus; and 
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logic circuitry limiting access to the key register from the microcontroller data 
bus using specified addresses of the non-volatile memory corresponding to the 
decryptor engine and a received program counter value of a microcontroller. 

19. (Previously Presented) The system of claim 18, wherein the logic circuitry uses 
specified addresses of the non-volatile memory by limiting access to minimum and 
maximum ROM memory addresses using the microcontroller program counter. 

20. (Currently Amended) A computer-readable medium comprising instructions 
written thereon in the form of a bitstream that (X)nfigures a programmable logic device, 
the computer-readable medium comprising: 

a configuration boot program portion of the bitstream that runs a microcontroller 
on the programmable logic device; and 

an encrypted bitstream portion of the bitstream containing encrypted 
configuration data that when decrypted and loaded into a configuration data register 
on the programmable logic device configures the programmable logic device, 

wherein the configuration boot program further comprises instructions for a 
decryptor, wherein the configuration boot program stores the instructions for the 
decrvDto r in a memory, wherein the decryptor Is executed by a microcontroller and 
decrypts the encrypted bitstream usino key data stored within a key storage register, 
and wherein access to the key storage register by the microcontroller is selectively 
permitted when a program counter of the microcontroller specifies an address within 
an address range corresponding to the decryptor within the memory . 

21. (Cancelled) 

22. (Previously Presented) The computer-readable medium of claim 20, wherein 
the configuration boot program comprises instructions for a decompressor. 
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